Network Security Architect
OrbiaAbout the role
Orbia Advance Corporation is a Purpose-led company with big aspirations. We are out to advance life around the world while maximizing value to our shareholders, customers and employees. The Company is passionate about the topics that define how people will live and thrive tomorrow: the future of cities, buildings, agriculture, and materials. Orbia Advance Corporation has five business groups which offer innovative solutions across multiple industries including building and infrastructure, data communications, chemicals and more. In 2018, Orbia Advance Corporation bought a majority stake in Israeli-based Netafim, the world’s leader in drip irrigation, and is helping the world ‘grow more with less’ as it helps to solve food and water scarcity. Orbia Advance Corporation has operations in 41 countries with more than 22,000 employees.
We started as a producer of commodities and have evolved to become a provider of innovative solutions that address the global issues of rapid urbanization, water and food scarcity, and a growing and aging population. We’re already a global leader in Polymers, Fluor, Building & Infrastructure, Datacom, and Precision Irrigation. We have embarked on a CEO-led transformation, as part of our journey to become a truly purpose-led, future fit company.
Position Complexity
- The job requires deep subject matter expertise and experience in network security config/hardening and prevention policies design and implementation for Firewall, Proxy servers (SWG), NAC and Secure Remote access solutions.
- The candidate must have a strong understanding of country/industry regulatory requirements and which network security controls are designed to support the organization compliance to those.
- The scope of the job is global network security across a relatively fragmented technology landscape, any decision and action will require to think proactively on its potential global impact and work with stakeholders across geographies and cultures to mitigate risks.
- This role will collaborate and provide technical direction to multiple vendors globally distributed.
- Clearly demonstrates impactful communication skills (oral, written and presentation) in both formal and informal settings, articulating complex ideas to broad audiences, from frontline workers to VP level.
Main Purpose and Responsibilities
- Drive the network security architecture and engineering of the Orbia security controls to protect all endpoints across the workplace and hosting (cloud Infra as a service and on-premises) technology footprint.
- Perform gap analysis of the current network security postures against relevant industry benchmark’s (e.g., CIS benchmarks)
- Drive network security remediation and hardening initiatives across Global IT owned and business groups owned infrastructure factoring business change impact in close alignment with stakeholders.
- Function as a primary product owner/subject matter expert for cybersecurity owned network security tools such as Secure Service Edge SWG/Private access driving continuous improvement of prevention/detection and response policies as well as ensuring Orbia architecture and footprint remains current and aligned to standard.
- Evaluates and reviews Managed Service Provider performance and metrics periodically performing L3 support and oversight of complex issues/changes.
- Ongoing integration, feature expansion, reporting, validation, and monitoring of network security controls in close partnership with Orbia Global IT Network team
- Plans and drives scoping, requirements definition and prioritization activities for large / complex network security projects
- Reviews others' architecture designs to ensure selection of appropriate network security technology, efficient use of resources, and effective integration of multiple systems and technology.
- Obtains input from and formal agreement to requirements from a diverse range of stakeholders.
Knowledge
- Deep architectural/engineering expertise with the Secure Service Edge solutions (e.g., Zscaler, Netskope,.) as well as with the Next Generation Firewalls such as FortiGate and ClearPass NAC..
- Deep hands-on expertise with Network system hardening practices following industry standards such as CIS benchmark.
- Understanding of common cybersecurity attacks tactics & techniques and how to prevent them engineering network security controls.
- Experience with infrastructure as a code/scripting as it relates to network security device management/provisioning/update.
- Understanding business impact and requirements and translate into system security architecture and engineering design.
- At least one operations-specific network and one network security professional certification (e.g., vendor specific certification
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s